Illustration for: AI Agent Governance Is Becoming Its Own Budget Line

AI Agent Governance Is Becoming Its Own Budget Line

Groundcover, Glow and Onyx Security have all reached nine- or ten-figure valuations within months of launch by treating AI-agent oversight as a distinct enterprise budget line rather than a feature bolted onto existing security or observability tools.

TC
By the AI Desk
Edited by Trace Cohen · Early-stage VC & angel · Founder, New York Venture Partners
2 min read
ShareXLinkedInEmail

THE RUNDOWN

1

Groundcover raised a $100M Series C at a $500M valuation betting that AI agents, not human engineers, are now observability tooling's primary users -- a direct challenge to Datadog's human-first dashboard model

2

Glow emerged from stealth with $180M raised across three rounds in roughly a year, reaching a $1.2B valuation to rebuild endpoint security specifically for AI-native threats

3

Onyx Security raised $113M just four months after its own stealth launch, reaching a roughly $640M valuation for a platform that governs what autonomous agents actually do once they're inside enterprise systems

4

All three are attacking adjacent but distinct layers -- observability, endpoint, and in-system governance -- rather than consolidating into one platform, which is itself a signal about how much surface area investors think this category has

TC

The VC Read · Trace's Take

Trace Cohen

Three companies hitting nine or ten figures in valuation within months, each owning a different layer of the same problem, is the tell that agent governance just graduated from feature to procurement category -- it now has its own budget owner, not a line item borrowed from an existing security or observability renewal. If you're pitching agent-security today, the diligence question is which of these three layers you actually own, because 'a bit of all three' is not a defensible position against specialists this well-funded.

Analysis

Three companies attacking three different layers of the same underlying problem have each reached nine- or ten-figure valuations within months of launching. Groundcover raised a $100 million Series C led by One Peak at a $500 million valuation, betting that AI agents -- not human engineers -- are now observability tooling's primary users, putting it in direct competition with incumbent Datadog. Glow emerged from stealth with $180 million raised across three rounds in roughly a year, reaching a $1.2 billion valuation to rebuild endpoint security specifically for AI-native threats. Onyx Security raised $113 million just four months after its own stealth launch, reaching a roughly $640 million valuation for a platform that monitors and governs what autonomous agents actually do once they're already inside enterprise software.

What's notable is that none of these three is consolidating the others' territory. Groundcover is rebuilding observability around machine consumers instead of human ones; Glow is protecting the endpoint itself against AI-era threats; Onyx is governing agent behavior after an agent already has access. That the category is fragmenting into specialized layers this early, rather than one platform absorbing the rest, tells you investors see enough distinct surface area to fund multiple winners rather than a single consolidator.

What's notable is that none of these three is consolidating the others' territory.

The speed is the real signal. Two years ago, agent oversight barely existed as a line item in an enterprise security or infrastructure budget. Now three separate companies have each cleared a nine-figure valuation within roughly a year or less of launch -- a compression that mirrors what happened across most AI-native software categories in 2026, but is notable here because it means enterprise buyers are already carving out dedicated spend for this, not just experimenting with a feature inside an existing tool's renewal.

For founders and investors in adjacent categories, the read-through is that "agent governance" isn't a feature checkbox anymore -- it's graduating into its own procurement category with its own budget owner, the way "cloud security posture management" did a decade ago. What to watch: whether incumbents like Datadog, CrowdStrike or Wiz respond by building agent-native interfaces themselves, or whether they let this generation of specialists own the category the way legacy SIEM vendors ceded ground to cloud-native security startups the last cycle.

ShareXLinkedInEmail

Key Sources

2 sources

THE WIRE in your inbox— Tech, startup & VC news with Trace's take. Free, no spam.